CVE-2005-3646

Publication date

2005-11-17 11:00:00

Family

mitre

State

PUBLISHED

Description

Multiple SQL injection vulnerabilities in lib-sessions.inc.php in phpAdsNew and phpPgAds 2.0.6 and possibly earlier versions allow remote attackers to execute arbitrary SQL commands via the sessionID parameter in (1) logout.php and (2) index.php.